IOC Report
cracked.exe

loading gif

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\cracked.exe
"C:\Users\user\Desktop\cracked.exe"
malicious

URLs

Name
IP
Malicious
http://www.apache.org/licenses/LICENSE-2.0
unknown
https://185.228.139.123:8443/;&
unknown
https://185.228.139.123:8443/c
unknown
https://185.228.139.123:8443/j
unknown
http://www.zeustech.net/
unknown
https://185.228.139.123:8443/&&
unknown
https://185.228.139.123:8443/)
unknown
https://185.228.139.123:8443/6mopdNaoQfcUCxUKcT5rOgk6Ghe5kPS2RxsCbDkmRVCYraOjDorEABYEk0r2iVvCnzli5Bo
unknown
https://185.228.139.123:8443/V
unknown
https://185.228.139.123:8443/-&
unknown
https://185.228.139.123:8443/0
unknown
https://185.228.139.123:8443/q
unknown
https://185.228.139.123:8443/4&
unknown
http://www.apache.org/
unknown
https://185.228.139.123:8443/
unknown
There are 5 hidden URLs, click here to show them.

IPs

IP
Domain
Country
Malicious
185.228.139.123
unknown
Germany

Memdumps

Base Address
Regiontype
Protect
Malicious
416000
unkown
page execute and write copy
malicious
416000
unkown
page execute and write copy
malicious
59D000
heap
page read and write
415000
unkown
page readonly
223E000
stack
page read and write
227E000
stack
page read and write
400000
unkown
page readonly
530000
heap
page read and write
69E000
stack
page read and write
5A6000
heap
page read and write
415000
unkown
page readonly
2940000
remote allocation
page read and write
7C7000
direct allocation
page read and write
950000
heap
page read and write
58E000
heap
page read and write
56A000
heap
page read and write
2940000
remote allocation
page read and write
237D000
stack
page read and write
1C0000
heap
page read and write
920000
heap
page read and write
5B2000
heap
page read and write
7C1000
direct allocation
page readonly
401000
unkown
page execute read
40C000
unkown
page readonly
5BA000
heap
page read and write
5A0000
heap
page read and write
56E000
heap
page read and write
40C000
unkown
page readonly
2940000
remote allocation
page read and write
595000
heap
page read and write
27FF000
stack
page read and write
79E000
stack
page read and write
19D000
stack
page read and write
7A0000
direct allocation
page read and write
7CE000
direct allocation
page read and write
450000
heap
page read and write
560000
heap
page read and write
7CF000
direct allocation
page readonly
1C5000
heap
page read and write
597000
heap
page read and write
40D000
unkown
page write copy
213E000
stack
page read and write
7CC000
direct allocation
page read and write
401000
unkown
page execute read
9C000
stack
page read and write
40D000
unkown
page write copy
26FE000
stack
page read and write
7A1000
direct allocation
page execute read
400000
unkown
page readonly
There are 39 hidden memdumps, click here to show them.